portal-espresso[.]app
“Nur einen Moment…”
portal-espresso.app — Inhalt nicht verfügbar (HTTP 502). Zusammenfassung der Beweislage: VirusTotal 4/93 (alphaMountain.ai, Fortinet, Gridinsoft, SOCRadar); Spamhaus DBL_PHISH; PhishDestroy score 65/100.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
As of July 25, 2026, the domain portal-espresso.app has been identified as a potential phishing site and is currently offline. The domain is listed on one security blocklist and is flagged by four out of 93 security vendors, indicating elevated risk. The domain resolves to the IP address 104.21.62.95, which is located in the United States and is part of the AS13335 Cloudflare, Inc. network. The nameservers for this domain are adam.ns.cloudflare.com and danica.ns.cloudflare.com, suggesting the use of Cloudflare's DNS services.
The domain is specifically blocked by the PhishDestroy security solution, which further underscores the potential threat. The Gridinsoft trust score for portal-espresso.app is 0 out of 100, indicating a complete lack of trust in the domain. The page title 'Nur einen Moment…' translates to 'Just a moment…' in English, which is a common indicator of a temporary holding page or a page designed to delay and mislead visitors. The domain does not have an SSL certificate, which is a red flag as legitimate sites typically use SSL to secure connections.
The current HTTP status of the domain is offline, which may be a result of takedown efforts by security organizations or the domain owner. While the exact content of the site has not been analyzed, the combination of the low trust score, security vendor flags, and blocklist presence suggests that portal-espresso.app was likely used for phishing activities. Defenders should ensure that this domain is blocked in their network security configurations and warn users against accessing it. Regular monitoring of security blocklists and vendor detections is recommended to stay updated on any changes in the domain's status or threat level.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Forensische Erkenntnisse
VirusTotal-Analyse
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt